Bug #12119
closed
Attaching screenshots of the issue.
I'm not able to reproduce this with Suricata 6.0.0_11 in pfSense 2.5.2 or 2.6. I tried with blocking mode enabled and disabled on WAN and my Traffic Graphs widget continues to show graph data. More details on how to reproduce will be needed I think.
Certainly!
pfsense ver: 2.5.2
suricata ver: 6.0.0_11
Suricata Options Other than defaults:
- Block Offenders: Enabled
- IPS Mode: Inline
I saw this issue on both VMXNET3, e1000, and Intel Gig NICs. Let me know what else I can provide that would be helpful. Thank you!
WAN Interface is a standard DHCP setup
- Status changed from New to Not a Bug
This is normal and expected when using inline mode and NETMAP. The interface behavior is fundamentally different in that mode and it does not keep statistics since they can degrade performance.
Also available in: Atom
PDF